← العودة للجدول
CVE-2026-61639
CVE-2026-61639 | ellite Wallos up to 4.9.5 Zip Extraction restore.php ZipArchive::extractTo path traversal
📅 2026-09-01
🟠 High 🔥 No VulDB Vulnerability Web

📋 الوصف الكامل

A vulnerability described as problematic has been identified in ellite Wallos up to 4.9.5. The affected element is the function ZipArchive::extractTo of the file /endpoints/db/restore.php of the component Zip Extraction. The manipulation results in path traversal. This vulnerability was named CVE-2026-61639. The attack may be performed from remote. There is no available exploit. Upgrading the af

💻 الأنظمة المتأثرة

PHP

⚠️ نوع التهديد

Vulnerability

🔗 CVE ID

CVE-2026-61639

📡 المصدر

VulDB

✅ الحلول والتخفيف

Apply vendor security patch

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ← 🔍 Valters IT ←